Olnick Rentals Data Breach Exposes Personal and Tenant Information

Published: 30 September 2026
Real Estate data breach illustration
Breach Discovery: Not Publicly DisclosedBreach Notification: Not Publicly Disclosed

A ransomware group called Storm claims to have breached Olnick Rentals, a New York property management firm, potentially exposing tenant, employee, and business data. Olnick Rentals has not confirmed the incident publicly. The exact number of people affected and the specific data involved remain undisclosed. Affected individuals should monitor credit reports and watch for phishing attempts immediately.

CompanyOlnick Rentals
IndustryReal Estate
Data Types ExposedNames and Contact Information, Lease or Rental Agreement Details, Employee Records, Financial Account Information, Property Management Business Documents
People AffectedNot Publicly Disclosed
Attack MethodRansomware
Regulators NotifiedNot Publicly Disclosed

Were you affected by this breach?

You may be owed compensation.

Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.

Check if you qualify — free review

What Happened in the Olnick Rentals Data Breach?

A ransomware group known as Storm has claimed responsibility for a cyberattack targeting Olnick Rentals. Olnick Rentals is a New York-based property management firm that oversees residential, office, retail, and hospitality real estate. The claim appeared on the group’s dark web leak site, where extortion gangs typically list victims to pressure them into paying a ransom.

As of now, the exact breach discovery date has not been publicly disclosed. However, the appearance of Olnick Rentals on a known ransomware leak site suggests that attackers may have gained unauthorized access to internal systems at some point before the listing went live. Because this is an extortion group’s own claim, the specific method used to breach the network, whether phishing, stolen credentials, or a software vulnerability, remains unknown.

Olnick Rentals has not publicly confirmed this incident. As a result, there is no confirmed timeline describing when the intrusion began or how long the attackers may have had access. This article will be updated if the company issues an official statement or if additional details become available through regulatory filings or public disclosures.

Who was affected?

The full scope of individuals affected by this incident has not been publicly disclosed. Given that Olnick Rentals manages residential, office, retail, and hospitality properties, the exposed data could potentially involve tenants, business clients, employees, or vendors connected to the company.

Olnick Rentals employs between 51 and 200 people, according to available records. This means that both staff records and client or tenant files could plausibly be part of any compromised dataset. Because the company operates across multiple property types, the affected population may span both individual renters and business tenants located in the New York area.

What Information Was Potentially Exposed?

Specific details about the exact data fields compromised in this incident have not been independently confirmed. However, ransomware and extortion groups that target property management firms typically seek out sensitive personal and financial records tied to tenants, employees, and business operations.

  • Names and contact information
  • Lease or rental agreement details
  • Employee records
  • Financial account information
  • Property management business documents

If personal or financial data was indeed accessed, affected individuals could face a heightened risk of identity theft. For example, criminals could use stolen names combined with financial details to open fraudulent accounts or file false tax returns. This risk grows if Social Security numbers or banking details were part of the stolen files.

In addition, exposed contact information often fuels targeted phishing campaigns. Attackers may impersonate Olnick Rentals or affiliated services to trick tenants or employees into revealing passwords or payment details. Because rental relationships often involve recurring payments, scammers could exploit this trust to request fraudulent transfers.

What is the company doing?

Olnick Rentals has not publicly confirmed this breach. Therefore, no official investigation, remediation, or notification process has been disclosed at this time. The claims currently rest solely with the Storm ransomware group’s leak site listing.

Because the company has not issued a statement, it remains unclear whether affected individuals have been notified or whether credit monitoring or identity protection services will be offered. If Olnick Rentals releases an official response, this article will be updated to reflect confirmed remediation steps, notification timelines, and any protective services made available to affected individuals.

What Should Affected Individuals Do?

Monitor Your Credit Reports

Anyone who has rented from, worked for, or done business with Olnick Rentals should consider checking their credit reports regularly. This is one of the simplest ways to catch fraudulent activity early. You can request free reports from all three major credit bureaus through AnnualCreditReport.com.

Look closely for unfamiliar accounts, hard inquiries you didn’t authorize, or sudden changes to your credit limit. Because identity thieves often act quickly after obtaining stolen data, checking your reports every few months can help you spot problems before they escalate.

Consider a Fraud Alert or Credit Freeze

If you believe your personal or financial information may have been part of this breach, placing a fraud alert on your credit file is a smart precaution. A fraud alert requires lenders to verify your identity before opening new credit in your name.

For stronger protection, you can request a credit freeze instead. This action restricts access to your credit file entirely, making it much harder for identity thieves to open new accounts. Freezes are free and can be lifted temporarily whenever you need to apply for credit yourself.

Stay Alert for Phishing Attempts

Because stolen contact information often gets used in scam campaigns, it’s important to treat unexpected emails, texts, or calls with caution. Scammers frequently pose as trusted companies, including property managers or landlords, to trick victims into revealing sensitive details.

Never click links or provide personal information in response to unsolicited messages. Instead, verify any communication directly with Olnick Rentals through a known, official phone number or website before taking action.

Review Financial and Rental Account Statements

If you have a financial relationship with Olnick Rentals, such as automatic rent payments, review your bank and card statements closely. Look for unauthorized charges or unfamiliar withdrawals that could indicate misuse of your financial data.

In addition, consider updating any passwords associated with online rental payment portals. Using a unique, strong password for each account reduces the chance that a single data breach compromises multiple parts of your financial life.

Consult a Data Breach Attorney

If you suspect your information was compromised in this incident, speaking with a data breach attorney can help clarify your legal options. Many attorneys offer free consultations to evaluate whether you may be entitled to compensation.

Because ransomware-related data breaches sometimes lead to class action lawsuits, staying informed about developments in this case is important. An attorney can help you understand deadlines and next steps if litigation moves forward.

Get a Free Case Review

Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.



Related Data Breaches

Check other recent data breach notifications →